NIST SP 800-53 Rev 5 MODERATE
AU Audit and Accountability

NIST SP 800-53 Rev 5 MODERATE AU-3(1): Additional Audit Information

Generate audit records containing FedRAMP-defined additional information (session, host, full text of executed commands).

What else in your programme already covers this

This control maps to 19 controls across 12 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

PCI DSS 4.0 · 4 controls

SOC 2 · 3 controls

  • SOC2-CC2.1 COSO principle 13: Obtains and generates relevant, quality information
  • SOC2-CC6.1 Implements logical access security software, infrastructure and architectures over protected information assets
  • SOC2-CC7.1 Detection and monitoring procedures for security events are in place

CIS Controls v8 · 2 controls

  • CIS-8.5 Collect Detailed Audit Logs
  • CIS-8.8 Collect Command-Line Audit Logs

CMMC 2.0 · 2 controls

  • SEC06-BP03 Reduce manual management and interactive access

C5 (Germany) · 1 control

  • C5-OPS-15 Logging and Monitoring - Accountability

ISO 27001:2022 · 1 control

ISO 27002:2022 · 1 control

  • NIST-CSF-PR.PS-04 Log records are generated and made available for continuous monitoring

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in AU Audit and Accountability

Query this from an agent

The graph holds this control, the 19 it maps to, and the evidence behind each claim, over MCP and REST.